MSA-tenant token generation

testuser7 271 Reputation points
2022-09-23T13:52:01.547+00:00

Hello,

I have registered one multi-tenant app in my AAD tenant
All users with a work or school, or personal Microsoft account can use this app.
So basically this app can be used by personal accounts that are used to sign in to services like Xbox and Skype.

However, when such personal user is putting his username and password, he is getting following error.
Looks like MSA-tenant is not generating token for this user for this app.

AADSTS500200: User account is a personal Microsoft account. Personal Microsoft accounts are not supported for this application unless explicitly invited to an organization. Try signing out and signing back in with an organizational account.

Appreciate your help !!!

Thanks.

Microsoft Graph
Microsoft Graph
A Microsoft programmability model that exposes REST APIs and client libraries to access data on Microsoft 365 services.
10,692 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,618 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. James Hamil 21,851 Reputation points Microsoft Employee
    2022-09-23T22:52:36.693+00:00

    Hi @testuser7 , do you mean this is only happening with one user, or all with personal accounts? This is most likely because you have to invite them through B2B. Have you looked into this? Please let me know and I can help you further.

    Thank you,
    James

    0 comments No comments